Comment Re:"Social engineering" (Score 1) 448
GoDaddy is still on the hook in my eyes though - given the completely unsecure treatment of the last four by pretty much everyone, using it for any sort of authentication purposes is completely asinine.
Lot's of places use the last 4 digits as authentication. Hopefully the same place that uses the last 4 digits aren't the ones handing
it out but that's part of the problem. Every place has their own "hopefully" adequate security but another firm might have a slightly
different authentication method that is also adequate on its own but combined with the 2nd firm there is a huge security hole. Then
there are the completely idiotic ones like "year you graduated" or "favorite color" There are what maybe less than a dozen common
colors and if you know the person's age you can guess the graduation year probably within a couple years. I've been given a list
of a dozen questions that none of them have more than maybe a dozen or so common answers.